NetDefense
Catch what is meant to stay unseen: signals-intelligence detection of the slow, persistent intrusion moving through infrastructure your endpoint tools never touch.

deployment models, including fully air-gapped
retention window, set by you
authorize every containment action
detection where no agent runs
Find the threat built to stay hidden
A patient intrusion avoids the endpoint, moves low and slow, and blends into ordinary traffic. NetDefense reads the traffic itself, at signals-intelligence depth, where that presence has nowhere to hide.
Every detection carries a signed, versioned evidence trail through one chain of custody, so a finding holds up when it is reviewed.
See what the endpoint can’t
Routers, firewalls, VPN appliances and hypervisors carry no endpoint agent. Network-layer collection is the only place that activity is visible at all.
Deep packet inspection, asset discovery, and machine-learning detection of malware, ransomware, insider and zero-day, at the layer an agent never reaches.
From one network to national infrastructure
The same detection engine covers a single network, a whole department, and national-scale infrastructure, extended from the ground to space-based collection, without losing depth as it grows.
One network or enclave, watched in full at the packet layer.
Every segment and tier composed into one operating picture.
Distributed infrastructure across a country, one engine end to end.
Space-based collection extends reach beyond the network you hold.
One engine, expanded for government
NetDefense is built on NetSentinel, our core detection engine. This page is the government edition: the NetSentinel engine tailored and fully unlocked, with counterintelligence and space extensions a commercial deployment does not carry.
NetSentinel
Real-time network visibility, deep packet inspection, asset discovery and machine-learning detection. Proven with commercial defenders, and the engine everything on this page is built on.
NetDefense
The fully unlocked, tailor-made government edition of the engine, the SIGINT-grade detection described above.
NetPatriot
A counterintelligence network and endpoint threat-detection system, for the adversary operating inside the wire.
The NetSentinel engine is available standalone for commercial network defense, without the government edition.
Detection, response, and the test of both
Detection is one leg. Cyber Response investigates what NetDefense surfaces, including on the appliances and hypervisors an agent never reaches. RedLane tests whether it would have surfaced at all.
National programs and armed forces
National programs, agencies and armed forces defending networks they cannot afford to lose visibility on. Every engagement is scoped against the authorities you hold and the jurisdiction you operate under.